
<!DOCTYPE HTML>
<html lang="zh-hans" >
    <head>
        <meta charset="UTF-8">
        <meta content="text/html; charset=utf-8" http-equiv="Content-Type">
        <title>Linux日志管理系统 · AGou's StudyNote</title>
        <meta http-equiv="X-UA-Compatible" content="IE=edge" />
        <meta name="description" content="">
        <meta name="generator" content="GitBook 3.2.3">
        <meta name="author" content="AGou">
        
        
    
    <link rel="stylesheet" href="../gitbook/style.css">

    
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-anchors/plugin.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-tbfed-pagefooter/footer.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-expandable-chapters-small/expandable-chapters-small.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-anchor-navigation-ex/style/plugin.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-prism/prism-tomorrow.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-insert-logo/plugin.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-search-pro/search.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-splitter/splitter.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-lightbox/css/lightbox.min.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-donate/plugin.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-code/plugin.css">
                
            
                
                <link rel="stylesheet" href="../gitbook/gitbook-plugin-fontsettings/website.css">
                
            
        

    

    
        
    
        
    
        
    
        
    
        
    
        
    

        
    
    
    
    <meta name="HandheldFriendly" content="true"/>
    <meta name="viewport" content="width=device-width, initial-scale=1, user-scalable=no">
    <meta name="apple-mobile-web-app-capable" content="yes">
    <meta name="apple-mobile-web-app-status-bar-style" content="black">
    <link rel="apple-touch-icon-precomposed" sizes="152x152" href="../gitbook/images/apple-touch-icon-precomposed-152.png">
    <link rel="shortcut icon" href="../gitbook/images/favicon.ico" type="image/x-icon">

    
    <link rel="next" href="sudo详解.html" />
    
    
    <link rel="prev" href="Linux时间服务器.html" />
    

    <style>
    @media only screen and (max-width: 640px) {
        .book-header .hidden-mobile {
            display: none;
        }
    }
    </style>
    <script>
        window["gitbook-plugin-github-buttons"] = {"repo":"AGou-ops/myStudyNote","types":["star","watch","fork"],"size":"small"};
    </script>

    </head>
    <body>
        
<div class="book">
    <div class="book-summary">
        
            
<div id="book-search-input" role="search">
    <input type="text" placeholder="输入并搜索" />
</div>

            
                <nav role="navigation">
                


<ul class="summary">
    
    
    
        
        <li>
            <a href="http://agou-ops.github.io" target="_blank" class="custom-link">◆点击进入我的个人博客</a>
        </li>
    
    

    
    <li class="divider"></li>
    

    
        
        
    
        <li class="chapter " data-level="1.1" data-path="../">
            
                <a href="../">
            
                    
                        <b>1.1.</b>
                    
                    关于我
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.2" data-path="../Program_lang/">
            
                <a href="../Program_lang/">
            
                    
                        <b>1.2.</b>
                    
                    编程语言
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.2.1" data-path="../Program_lang/Python.html">
            
                <a href="../Program_lang/Python.html">
            
                    
                        <b>1.2.1.</b>
                    
                    Python
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.2.2" data-path="../Program_lang/Java.html">
            
                <a href="../Program_lang/Java.html">
            
                    
                        <b>1.2.2.</b>
                    
                    Java
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.2.3" data-path="../Program_lang/Splash_Lua.html">
            
                <a href="../Program_lang/Splash_Lua.html">
            
                    
                        <b>1.2.3.</b>
                    
                    Splash_Lua
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.3" data-path="../Database/">
            
                <a href="../Database/">
            
                    
                        <b>1.3.</b>
                    
                    数据库
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.3.1" data-path="../Database/Mysql、MariaDB/README.md">
            
                <span>
            
                    
                        <b>1.3.1.</b>
                    
                    Mysql/MariaDB
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.3.1.1" data-path="../Database/Mysql、MariaDB/MySQL、MariaDB基础.html">
            
                <a href="../Database/Mysql、MariaDB/MySQL、MariaDB基础.html">
            
                    
                        <b>1.3.1.1.</b>
                    
                    MySQL/MariaDB基础
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.3.1.2" data-path="../Database/Mysql、MariaDB/php-mysql.html">
            
                <a href="../Database/Mysql、MariaDB/php-mysql.html">
            
                    
                        <b>1.3.1.2.</b>
                    
                    php-mysql
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.3.2" data-path="../Database/MongoDB.html">
            
                <a href="../Database/MongoDB.html">
            
                    
                        <b>1.3.2.</b>
                    
                    MongoDB
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.3.3" data-path="../Database/Redis.html">
            
                <a href="../Database/Redis.html">
            
                    
                        <b>1.3.3.</b>
                    
                    Redis
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.4" data-path="./">
            
                <a href="./">
            
                    
                        <b>1.4.</b>
                    
                    Linux
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.4.1" data-path="Linux基础.html">
            
                <a href="Linux基础.html">
            
                    
                        <b>1.4.1.</b>
                    
                    Linux基础
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.2" data-path="Linux启动流程、内核、grub、模块、内核的编译、anaconda自动化.html">
            
                <a href="Linux启动流程、内核、grub、模块、内核的编译、anaconda自动化.html">
            
                    
                        <b>1.4.2.</b>
                    
                    Linux启动流程、内核、grub、模块等
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.3" data-path="Linux服务器.html">
            
                <a href="Linux服务器.html">
            
                    
                        <b>1.4.3.</b>
                    
                    Linux服务器
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.4" data-path="Linux状态信息.html">
            
                <a href="Linux状态信息.html">
            
                    
                        <b>1.4.4.</b>
                    
                    Linux状态信息
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.5" data-path="Linux网络客户端工具.html">
            
                <a href="Linux网络客户端工具.html">
            
                    
                        <b>1.4.5.</b>
                    
                    Linux网络客户端工具
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.6" data-path="Linux网络配置.html">
            
                <a href="Linux网络配置.html">
            
                    
                        <b>1.4.6.</b>
                    
                    Linux网络配置
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.7" data-path="Linux配置文件.md">
            
                <span>
            
                    
                        <b>1.4.7.</b>
                    
                    Linux配置文件
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.8" data-path="Linux时间服务器.html">
            
                <a href="Linux时间服务器.html">
            
                    
                        <b>1.4.8.</b>
                    
                    Linux时间服务器
            
                </a>
            

            
        </li>
    
        <li class="chapter active" data-level="1.4.9" data-path="Linux日志管理系统.html">
            
                <a href="Linux日志管理系统.html">
            
                    
                        <b>1.4.9.</b>
                    
                    Linux日志管理系统
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.10" data-path="sudo详解.html">
            
                <a href="sudo详解.html">
            
                    
                        <b>1.4.10.</b>
                    
                    sudo详解
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.11" data-path="SElinux.html">
            
                <a href="SElinux.html">
            
                    
                        <b>1.4.11.</b>
                    
                    SELinux
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.12" data-path="iptables.html">
            
                <a href="iptables.html">
            
                    
                        <b>1.4.12.</b>
                    
                    iptables
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.13" data-path="Linux_shell.html">
            
                <a href="Linux_shell.html">
            
                    
                        <b>1.4.13.</b>
                    
                    Linux Shell
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.14" data-path="shell_awk.html">
            
                <a href="shell_awk.html">
            
                    
                        <b>1.4.14.</b>
                    
                    shell_awk
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.15" data-path="OpenSSL、PKI搭建、算法.html">
            
                <a href="OpenSSL、PKI搭建、算法.html">
            
                    
                        <b>1.4.15.</b>
                    
                    OpenSSL、PKI搭建
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.16" data-path="DNS服务器.html">
            
                <a href="DNS服务器.html">
            
                    
                        <b>1.4.16.</b>
                    
                    DNS服务器
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.17" data-path="Frp内网穿透.html">
            
                <a href="Frp内网穿透.html">
            
                    
                        <b>1.4.17.</b>
                    
                    Frp内网穿透
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.4.18" data-path="Linux其他.md">
            
                <span>
            
                    
                        <b>1.4.18.</b>
                    
                    Linux其他
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.5" data-path="../Linux_FileSystem/">
            
                <a href="../Linux_FileSystem/">
            
                    
                        <b>1.5.</b>
                    
                    Linux文件系统
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.5.1" data-path="../Linux_FileSystem/FTP.html">
            
                <a href="../Linux_FileSystem/FTP.html">
            
                    
                        <b>1.5.1.</b>
                    
                    FTP
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.5.2" data-path="../Linux_FileSystem/SAMBA.html">
            
                <a href="../Linux_FileSystem/SAMBA.html">
            
                    
                        <b>1.5.2.</b>
                    
                    SAMBA
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.6" data-path="../Linux_Tools/">
            
                <a href="../Linux_Tools/">
            
                    
                        <b>1.6.</b>
                    
                    Linux工具
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.6.1" data-path="../Linux_Tools/fzf工具.html">
            
                <a href="../Linux_Tools/fzf工具.html">
            
                    
                        <b>1.6.1.</b>
                    
                    fzf工具
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.6.2" data-path="../Linux_Tools/工具集合.html">
            
                <a href="../Linux_Tools/工具集合.html">
            
                    
                        <b>1.6.2.</b>
                    
                    Linux工具集合
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.7" data-path="../WEB_Server/">
            
                <a href="../WEB_Server/">
            
                    
                        <b>1.7.</b>
                    
                    网站服务器
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.7.1" data-path="../WEB_Server/HTML基础.html">
            
                <a href="../WEB_Server/HTML基础.html">
            
                    
                        <b>1.7.1.</b>
                    
                    HTML基础
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.7.2" data-path="../WEB_Server/WEB基础.html">
            
                <a href="../WEB_Server/WEB基础.html">
            
                    
                        <b>1.7.2.</b>
                    
                    WEB基础
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.7.3" data-path="../WEB_Server/httpd.html">
            
                <a href="../WEB_Server/httpd.html">
            
                    
                        <b>1.7.3.</b>
                    
                    httpd/Apache
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.7.4" data-path="../WEB_Server/httpd.conf文件详解.html">
            
                <a href="../WEB_Server/httpd.conf文件详解.html">
            
                    
                        <b>1.7.4.</b>
                    
                    httpd.conf文件详解
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.7.5" data-path="../WEB_Server/Nginx.html">
            
                <a href="../WEB_Server/Nginx.html">
            
                    
                        <b>1.7.5.</b>
                    
                    Nginx
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.7.6" data-path="../WEB_Server/HTTP状态码-详情.html">
            
                <a href="../WEB_Server/HTTP状态码-详情.html">
            
                    
                        <b>1.7.6.</b>
                    
                    HTTP状态码-详情
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.8" data-path="../Common_Framework/">
            
                <a href="../Common_Framework/">
            
                    
                        <b>1.8.</b>
                    
                    常用框架
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.8.1" data-path="../Common_Framework/LNMP.html">
            
                <a href="../Common_Framework/LNMP.html">
            
                    
                        <b>1.8.1.</b>
                    
                    LNMP
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.8.2" data-path="../Common_Framework/LAMP.html">
            
                <a href="../Common_Framework/LAMP.html">
            
                    
                        <b>1.8.2.</b>
                    
                    LAMP
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.9" data-path="../Docker&K8s/">
            
                <a href="../Docker&K8s/">
            
                    
                        <b>1.9.</b>
                    
                    容器及容器编排
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.9.1" data-path="../Docker&K8s/Docker/Docker.html">
            
                <a href="../Docker&K8s/Docker/Docker.html">
            
                    
                        <b>1.9.1.</b>
                    
                    Docker
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.9.1.1" data-path="../Docker&K8s/Docker/Docker.html">
            
                <a href="../Docker&K8s/Docker/Docker.html">
            
                    
                        <b>1.9.1.1.</b>
                    
                    Docker
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.9.2" data-path="../Docker&K8s/K8s/">
            
                <a href="../Docker&K8s/K8s/">
            
                    
                        <b>1.9.2.</b>
                    
                    K8s
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.9.2.1" data-path="../Docker&K8s/K8s/K8s基础知识.html">
            
                <a href="../Docker&K8s/K8s/K8s基础知识.html">
            
                    
                        <b>1.9.2.1.</b>
                    
                    K8s基础知识
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.9.2.2" data-path="../Docker&K8s/K8s/K8s安装与部署.html">
            
                <a href="../Docker&K8s/K8s/K8s安装与部署.html">
            
                    
                        <b>1.9.2.2.</b>
                    
                    K8s安装与部署
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.10" data-path="../Git/">
            
                <a href="../Git/">
            
                    
                        <b>1.10.</b>
                    
                    Git
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.10.1" data-path="../Git/Git基础.html">
            
                <a href="../Git/Git基础.html">
            
                    
                        <b>1.10.1.</b>
                    
                    Git基础
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.10.2" data-path="../Git/GitLab服务器.html">
            
                <a href="../Git/GitLab服务器.html">
            
                    
                        <b>1.10.2.</b>
                    
                    GitLab服务器
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.11" data-path="../Windows/">
            
                <a href="../Windows/">
            
                    
                        <b>1.11.</b>
                    
                    Windows系统
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.11.1" data-path="../Windows/cmd命令.html">
            
                <a href="../Windows/cmd命令.html">
            
                    
                        <b>1.11.1.</b>
                    
                    cmd命令
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    
        <li class="chapter " data-level="1.12" data-path="../Vim.html">
            
                <a href="../Vim.html">
            
                    
                        <b>1.12.</b>
                    
                    Vim
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.13" data-path="../i3WM快捷键.html">
            
                <a href="../i3WM快捷键.html">
            
                    
                        <b>1.13.</b>
                    
                    i3WM快捷键
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.14" data-path="../ADB命令.html">
            
                <a href="../ADB命令.html">
            
                    
                        <b>1.14.</b>
                    
                    ADB命令
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.15" data-path="../Tmux.html">
            
                <a href="../Tmux.html">
            
                    
                        <b>1.15.</b>
                    
                    Tmux
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.16" data-path="../Kindle.html">
            
                <a href="../Kindle.html">
            
                    
                        <b>1.16.</b>
                    
                    Kindle越狱指南
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.17" data-path="../Other/">
            
                <a href="../Other/">
            
                    
                        <b>1.17.</b>
                    
                    Other
            
                </a>
            

            
            <ul class="articles">
                
    
        <li class="chapter " data-level="1.17.1" data-path="../Other/pandoc.html">
            
                <a href="../Other/pandoc.html">
            
                    
                        <b>1.17.1.</b>
                    
                    pandoc
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.17.2" data-path="../Other/jupyter&reveal.js.html">
            
                <a href="../Other/jupyter&reveal.js.html">
            
                    
                        <b>1.17.2.</b>
                    
                    jupyter & reveal.js
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.17.3" data-path="../Other/json.html">
            
                <a href="../Other/json.html">
            
                    
                        <b>1.17.3.</b>
                    
                    json
            
                </a>
            

            
        </li>
    
        <li class="chapter " data-level="1.17.4" data-path="../Other/Reveal_js.html">
            
                <a href="../Other/Reveal_js.html">
            
                    
                        <b>1.17.4.</b>
                    
                    Reveal_js
            
                </a>
            

            
        </li>
    

            </ul>
            
        </li>
    

    

    <li class="divider"></li>

    <li>
        <a href="https://www.gitbook.com" target="blank" class="gitbook-link">
            本书使用 GitBook 发布
        </a>
    </li>
</ul>


                </nav>
            
        
    </div>

    <div class="book-body">
        
            <div class="body-inner">
                
                    

<div class="book-header" role="navigation">
    

    <!-- Title -->
    <h1>
        <i class="fa fa-circle-o-notch fa-spin"></i>
        <a href=".." >Linux日志管理系统</a>
    </h1>
</div>




                    <div class="page-wrapper" tabindex="-1" role="main">
                        <div class="page-inner">
                            
<div id="book-search-results">
    <div class="search-noresults">
    
                                <section class="normal markdown-section">
                                
                                <div id="anchor-navigation-ex-navbar"><i class="fa fa-anchor"></i><ul><li><a href="#linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;">1. Linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;</a></li><ul><li><a href="#&#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;">1.1. &#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;</a></li><li><a href="#&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog">1.2. &#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog</a></li><ul><li><a href="#&#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslogconf">1.2.1. &#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslog.conf</a></li><li><a href="#&#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;">1.2.2. &#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;</a></li><li><a href="#&#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;loganalyzer">1.2.3. &#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;(loganalyzer)</a></li></ul></ul></ul></div><a href="#linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;" id="anchorNavigationExGoTop"><i class="fa fa-arrow-up"></i></a><h1 id="linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;"><a name="linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;" class="anchor-navigation-ex-anchor" href="#linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;"><i class="fa fa-link" aria-hidden="true"></i></a>1. Linux&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;</h1>
<h2 id="&#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;"><a name="&#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;" class="anchor-navigation-ex-anchor" href="#&#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;"><i class="fa fa-link" aria-hidden="true"></i></a>1.1. &#x7CFB;&#x7EDF;&#x5E38;&#x7528;&#x65E5;&#x5FD7;</h2>
<ul>
<li><code>/var/log/message</code>&#xFF1A;&#x7CFB;&#x7EDF;&#x4FE1;&#x606F;&#x65E5;&#x5FD7;&#xFF0C;&#x5305;&#x542B;&#x9519;&#x8BEF;&#x4FE1;&#x606F;&#x7B49;</li>
<li><code>/var/log/secure</code>&#xFF1A;&#x7CFB;&#x7EDF;&#x767B;&#x5F55;&#x65E5;&#x5FD7;</li>
<li><code>/var/log/cron</code> &#xFF1A;&#x5B9A;&#x65F6;&#x4EFB;&#x52A1;&#x65E5;&#x5FD7;</li>
<li><code>/var/log/maillog</code>&#xFF1A;&#x90AE;&#x4EF6;&#x65E5;&#x5FD7;</li>
<li><code>/var/log/boot.log</code>&#xFF1A;&#x7CFB;&#x7EDF;&#x542F;&#x52A8;&#x65E5;&#x5FD7;</li>
</ul>
<p>&#x65E5;&#x5FD7;&#x7C7B;&#x578B;&#x5206;&#x7C7B;&#xFF08;facility&#xFF09;&#xFF1A;</p>
<table>
<thead>
<tr>
<th>&#x6807;&#x8BC6;</th>
<th>&#x8BF4;&#x660E;</th>
</tr>
</thead>
<tbody>
<tr>
<td>auth</td>
<td>pam&#x4EA7;&#x751F;&#x7684;&#x65E5;&#x5FD7;</td>
</tr>
<tr>
<td>authpriv</td>
<td>ssh,ftp&#x7B49;&#x767B;&#x9646;&#x670D;&#x52A1;&#x7684;&#x9A8C;&#x8BC1;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>cron</td>
<td>&#x65F6;&#x95F4;&#x4EFB;&#x52A1;&#x76F8;&#x5173;</td>
</tr>
<tr>
<td>kern</td>
<td>&#x5185;&#x6838;</td>
</tr>
<tr>
<td>lpr</td>
<td>&#x6253;&#x5370;</td>
</tr>
<tr>
<td>mail</td>
<td>&#x90AE;&#x4EF6;</td>
</tr>
<tr>
<td>mark&#xFF08;syslog)-rsyslog</td>
<td>&#x670D;&#x52A1;&#x5185;&#x90E8;&#x7684;&#x4FE1;&#x606F;&#xFF0C;&#x65F6;&#x95F4;&#x6807;&#x793A;</td>
</tr>
<tr>
<td>news</td>
<td>&#x65B0;&#x95FB;&#x7EC4;</td>
</tr>
<tr>
<td>user</td>
<td>&#x7528;&#x6237;&#x7A0B;&#x5E8F;&#x4EA7;&#x751F;&#x7684;&#x76F8;&#x5173;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>uucp</td>
<td>unix to unix copy,unix&#x4E3B;&#x673A;&#x4E4B;&#x95F4;&#x76F8;&#x5173;&#x7684;&#x901A;&#x8BAF;</td>
</tr>
<tr>
<td>local 1&#xFF5E;7</td>
<td>&#x81EA;&#x5B9A;&#x4E49;&#x7684;&#x65E5;&#x5FD7;&#x8BBE;&#x5907;</td>
</tr>
</tbody>
</table>
<p>&#x65E5;&#x5FD7;&#x4F18;&#x5148;&#x7EA7;&#x522B;&#xFF08;priority&#xFF09;&#xFF1A;</p>
<table>
<thead>
<tr>
<th>&#x7EA7;&#x522B;</th>
<th>&#x8BF4;&#x660E;</th>
</tr>
</thead>
<tbody>
<tr>
<td>debug</td>
<td>&#x6709;&#x8C03;&#x5F0F;&#x4FE1;&#x606F;&#x7684;&#xFF0C;&#x65E5;&#x5FD7;&#x4FE1;&#x606F;&#x6700;&#x591A;</td>
</tr>
<tr>
<td>info</td>
<td>&#x4E00;&#x822C;&#x4FE1;&#x606F;&#x7684;&#x65E5;&#x5FD7;&#xFF0C;&#x6700;&#x5E38;&#x7528;</td>
</tr>
<tr>
<td>notice</td>
<td>&#x6700;&#x5177;&#x6709;&#x91CD;&#x8981;&#x6027;&#x7684;&#x666E;&#x901A;&#x6761;&#x4EF6;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>warning</td>
<td>&#x8B66;&#x544A;&#x7EA7;&#x522B;</td>
</tr>
<tr>
<td>err</td>
<td>&#x9519;&#x8BEF;&#x7EA7;&#x522B;&#xFF0C;&#x7EC4;&#x7EC7;&#x67D0;&#x4E2A;&#x529F;&#x80FD;&#x6216;&#x8005;&#x6A21;&#x5757;&#x4E0D;&#x80FD;&#x6B63;&#x5E38;&#x5DE5;&#x4F5C;&#x7684;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>crit</td>
<td>&#x4E25;&#x91CD;&#x7EA7;&#x522B;&#xFF0C;&#x7EC4;&#x7EC7;&#x6574;&#x4E2A;&#x7CFB;&#x7EDF;&#x6216;&#x8005;&#x6574;&#x4E2A;&#x8F6F;&#x4EF6;&#x4E0D;&#x80FD;&#x6B63;&#x5E38;&#x5DE5;&#x4F5C;&#x7684;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>alert</td>
<td>&#x9700;&#x8981;&#x7ACB;&#x523B;&#x4FEE;&#x6539;&#x7684;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>emerg</td>
<td>&#x5185;&#x6838;&#x5D29;&#x6E83;&#x7B49;&#x4E25;&#x91CD;&#x4FE1;&#x606F;</td>
</tr>
<tr>
<td>none</td>
<td>&#x4EC0;&#x4E48;&#x90FD;&#x4E0D;&#x8BB0;&#x5F55;</td>
</tr>
</tbody>
</table>
<h2 id="&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog"><a name="&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog" class="anchor-navigation-ex-anchor" href="#&#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog"><i class="fa fa-link" aria-hidden="true"></i></a>1.2. &#x65E5;&#x5FD7;&#x7BA1;&#x7406;&#x7CFB;&#x7EDF;rsyslog</h2>
<p>&#x7A0B;&#x5E8F;&#x76F8;&#x5173;&#xFF1A;</p>
<ul>
<li>&#x4E3B;&#x7A0B;&#x5E8F;&#xFF1A;<code>rsyslogd</code></li>
<li>&#x4E3B;&#x914D;&#x7F6E;&#x6587;&#x4EF6;&#xFF1A;<code>/etc/rsyslog.conf</code>&#xFF0C;<code>/etc/rsyslog.d/*.conf</code></li>
<li>&#x670D;&#x52A1;&#x811A;&#x672C;&#xFF08;centos6&#xFF09;&#xFF1A;<code>/etc/rc.d/init.d/rsyslog</code></li>
<li>Unit File&#xFF08;centos7&#xFF09;&#xFF1A;<code>/usr/lib/systemd/system/rsyslog.service</code></li>
</ul>
<h3 id="&#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslogconf"><a name="&#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslogconf" class="anchor-navigation-ex-anchor" href="#&#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslogconf"><i class="fa fa-link" aria-hidden="true"></i></a>1.2.1. &#x914D;&#x7F6E;&#x6587;&#x4EF6;rsyslog.conf</h3>
<p>rsyslog&#x7684;&#x914D;&#x7F6E;&#x6587;&#x4EF6;&#x4E3B;&#x8981;&#x5206;&#x4E3A;&#x4E09;&#x4E2A;&#x6A21;&#x5757;&#xFF1A;</p>
<ul>
<li><code>MODULES</code>&#xFF1A;&#x6A21;&#x5757;&#x52A0;&#x8F7D;</li>
<li><code>GLOBAL DIRECTIVES</code>&#xFF1A;&#x5B9A;&#x4E49;&#x5168;&#x5C40;&#x73AF;&#x5883;&#xFF0C;&#x683C;&#x5F0F;&#x6A21;&#x677F;</li>
<li><code>RULES</code>&#xFF1A;&#x5B9A;&#x4E49;&#x4E86;&#x8BB0;&#x5F55;&#x65E5;&#x5FD7;&#x7684;&#x8BBE;&#x65BD;&#x4EE5;&#x53CA;&#x7B49;&#x7EA7;&#x7B49;&#x4FE1;&#x606F;</li>
</ul>
<h4 id="modules"><a name="modules" class="anchor-navigation-ex-anchor" href="#modules"><i class="fa fa-link" aria-hidden="true"></i></a>MODULES</h4>
<p>&#x52A0;&#x8F7D;<code>imtcp</code>&#x548C;<code>imudp</code>&#x6A21;&#x5757;&#xFF0C;&#x5373;&#x53EF;&#x5C06;rsyslogd&#x4F5C;&#x4E3A;&#x65E5;&#x5FD7;&#x670D;&#x52A1;&#x5668;&#x7AEF;</p>
<pre class="language-"><code class="lang-bash"><span class="token comment"># .../etc/rsyslog.conf</span>
<span class="token comment"># Provides UDP syslog reception</span>
<span class="token variable">$ModLoad</span> imudp
<span class="token variable">$UDPServerRun</span> <span class="token number">514</span>

<span class="token comment"># Provides TCP syslog reception</span>
<span class="token variable">$ModLoad</span> imtcp
<span class="token variable">$InputTCPServerRun</span> <span class="token number">514</span>
<span class="token comment"># ...</span>
</code></pre>
<p>&#x4FDD;&#x5B58;&#x9000;&#x51FA;&#xFF0C;&#x91CD;&#x542F;rsyslog&#x670D;&#x52A1;<code>systemctl resart rsyslog</code>&#x5373;&#x53EF;</p>
<h4 id="rules"><a name="rules" class="anchor-navigation-ex-anchor" href="#rules"><i class="fa fa-link" aria-hidden="true"></i></a>RULES</h4>
<p>&#x5B9A;&#x4E49;&#x683C;&#x5F0F;&#xFF1A;<code>facility.priority    Target</code></p>
<p>Target&#x53EF;&#x4EE5;&#x4FDD;&#x5B58;&#x81F3;&#xFF1A;</p>
<ul>
<li>&#x6587;&#x4EF6;&#xFF1A;&#x8BB0;&#x5F55;&#x65E5;&#x5FD7;&#x4E8B;&#x4EF6;&#x4E8E;&#x6307;&#x5B9A;&#x7684;&#x6587;&#x4EF6;&#x4E2D;;&#x901A;&#x5E38;&#x5E94;&#x8BE5;&#x4F4D;&#x4E8E;/var/log&#x76EE;&#x5F55;&#x4E0B;;&#x6587;&#x4EF6;&#x8DEF;&#x5F84;&#x4E4B;&#x524D;&#x7684;&quot;-&quot;&#x8868;&#x793A;&#x5F02;&#x6B65;&#x5199;&#x5165;;</li>
<li>&#x7528;&#x6237;&#xFF1A;&#x5C06;&#x65E5;&#x5FD7;&#x4E8B;&#x4EF6;&#x901A;&#x77E5;&#x7ED9;&#x6307;&#x5B9A;&#x7684;&#x7528;&#x6237;;&#x662F;&#x901A;&#x8FC7;&#x5C06;&#x4FE1;&#x606F;&#x53D1;&#x9001;&#x7ED9;&#x767B;&#x5F55;&#x5230;&#x7CFB;&#x7EDF;&#x4E0A;&#x7684;&#x7528;&#x6237;&#x7684;&#x7EC8;&#x7AEF;&#x8FDB;&#x884C;&#x7684;;</li>
<li>&#x65E5;&#x5FD7;&#x670D;&#x52A1;&#x5668;&#xFF1A;@host,&#x628A;&#x65E5;&#x5FD7;&#x9001;&#x5F80;&#x6307;&#x5B9A;&#x7684;&#x670D;&#x52A1;&#x5668;&#x4E3B;&#x673A;;</li>
<li>host &#xFF1A;&#x5373;&#x65E5;&#x5FD7;&#x670D;&#x52A1;&#x5668;&#x5730;&#x5740;,&#x76D1;&#x542C;&#x5728;tcp&#x6216;udp&#x534F;&#x8BAE;&#x7684;514&#x7AEF;&#x53E3;&#x4EE5;&#x63D0;&#x4F9B;&#x670D;&#x52A1;; &#x7BA1;&#x9053;&#xFF1A; | COMMAND</li>
</ul>
<p>&#x4F8B;&#x5B50;&#xFF1A;</p>
<ol>
<li><pre class="language-"><code class="lang-bash"><span class="token comment"># Log all the mail messages in one place.</span>
mail.*                                                  -/var/log/maillog
</code></pre>
</li>
</ol>
<p>&#x5C06;mail&#x7684;&#x6240;&#x6709;&#x7EA7;&#x522B;&#x65E5;&#x5FD7;&#x7EA7;&#x522B;&#x5F02;&#x6B65;&#x5B58;&#x50A8;&#x5230;<code>/var/log/maillog</code>&#x4E2D;&#x53BB;</p>
<ol>
<li><pre class="language-"><code class="lang-bash"><span class="token comment"># Everybody gets emergency messages</span>
*.emerg                                                 :omusrmsg:*
</code></pre>
</li>
</ol>
<p>&#x5C06;&#x6240;&#x6709;&#x8F6F;&#x4EF6;&#x4EA7;&#x751F;&#x7684;<code>emerg</code>&#x7EA7;&#x522B;&#x7684;&#x4FE1;&#x606F;&#x663E;&#x793A;&#x7ED9;&#x7528;&#x6237;&#xFF0C;<code>om</code>&#x8868;&#x793A;&#x8F93;&#x51FA;&#x6A21;&#x5757;&#xFF0C;<code>usrmsg</code>&#x8868;&#x793A;&#x7528;&#x6237;&#x4FE1;&#x606F;&#xFF0C;<code>*</code>&#x4EE3;&#x8868;&#x6240;&#x6709;&#x7528;&#x6237;</p>
<ol>
<li><pre class="language-"><code class="lang-bash">*.info<span class="token punctuation">;</span>mail.none<span class="token punctuation">;</span>authpriv.none<span class="token punctuation">;</span>cron.none                @172.16.122.132
</code></pre>
</li>
</ol>
<p>&#x5C06;&#x65E5;&#x5FD7;&#x5B58;&#x50A8;&#x4E8E;&#x8FDC;&#x7A0B;&#x4E3B;&#x673A;172.16.122.132&#x4E2D;&#xFF0C;&#x800C;&#x4E0D;&#x4FDD;&#x5B58;&#x5230;&#x672C;&#x5730;&#x65E5;&#x5FD7;&#x6587;&#x4EF6;&#x4E2D;</p>
<h3 id="&#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;"><a name="&#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;" class="anchor-navigation-ex-anchor" href="#&#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;"><i class="fa fa-link" aria-hidden="true"></i></a>1.2.2. &#x5C06;&#x65E5;&#x5FD7;&#x4FDD;&#x5B58;&#x5230;mysql&#x4E2D;</h3>
<ol>
<li>&#x5B89;&#x88C5;<code>rsyslog-mysql</code>&#x5305;</li>
</ol>
<pre class="language-"><code class="lang-bash">yum <span class="token function">install</span> -y rsyslog-mysql
</code></pre>
<pre class="language-"><code class="lang-bash"><span class="token punctuation">[</span>root@localhost ~<span class="token punctuation">]</span><span class="token punctuation">\</span># <span class="token function">rpm</span> -ql rsyslog-mysql
/usr/lib64/rsyslog/ommysql.so
/usr/share/doc/rsyslog-8.24.0/mysql-createDB.sql
</code></pre>
<p>&#x4F7F;&#x7528;rpm&#x67E5;&#x8BE2;&#x5305;&#x4EA7;&#x751F;&#x7684;&#x6587;&#x4EF6;&#x4FE1;&#x606F;&#x53EF;&#x4EE5;&#x770B;&#x51FA;&#xFF0C;&#x4E00;&#x4E2A;&#x662F;&#x8F93;&#x51FA;mysql&#x6A21;&#x5757;&#x6587;&#x4EF6;&#xFF0C;&#x53E6;&#x4E00;&#x4E2A;&#x662F;&#x7528;&#x4E8E;&#x521B;&#x5EFA;&#x6570;&#x636E;&#x5E93;&#x8868;&#x7684;&#x6570;&#x636E;&#x5E93;&#x6587;&#x4EF6;</p>
<ol>
<li>&#x5BFC;&#x5165;&#x6570;&#x636E;&#x5E93;&#x811A;&#x672C;</li>
</ol>
<pre class="language-"><code class="lang-bash">mysql <span class="token operator">&lt;</span> /usr/share/doc/rsyslog-8.24.0/mysql-createDB.sql
</code></pre>
<ol>
<li>&#x67E5;&#x770B;&#x6570;&#x636E;&#x5E93;&#x8868;&#x7ED3;&#x6784;</li>
</ol>
<pre class="language-"><code class="lang-mysql">mysql&gt; use Syslog;
mysql&gt; SHOW TABLES;
+------------------------+
| Tables_in_Syslog       |
+------------------------+
| SystemEvents           |
| SystemEventsProperties |
+------------------------+
# &#x67E5;&#x770B;SystemEvents&#x8868;&#x7ED3;&#x6784;
mysql&gt; DESC SystemEvents;
mysql&gt; DESC SystemEventsProperties;
</code></pre>
<ol>
<li>&#x6388;&#x4E88;&#x7528;&#x6237;&#x6743;&#x9650;</li>
</ol>
<pre class="language-"><code class="lang-mysql">mysql&gt; GRANT ALL ON Syslog.* TO &apos;rsyslog&apos;@&apos;172.16.122.%&apos; IDENTIFIED BY &apos;rsyslog&apos;;
mysql&gt; FLUSH PRIVILEGES;
</code></pre>
<ol>
<li>&#x7F16;&#x8F91;rsyslog&#x914D;&#x7F6E;&#x6587;&#x4EF6;</li>
</ol>
<pre class="language-"><code class="lang-bash"><span class="token comment">####</span>
<span class="token comment"># &#x542F;&#x7528;&#x6A21;&#x5757;</span>
<span class="token variable">$ModLoad</span> ommysql
<span class="token comment"># &#x7F16;&#x8F91;&#x89C4;&#x5219;</span>
*.info<span class="token punctuation">;</span>mail.none<span class="token punctuation">;</span>authpriv.none<span class="token punctuation">;</span>cron.none    :ommysql:172.16.122.132,Syslog,rsyslog,rsyslog        <span class="token comment"># &#x4ECE;&#x5DE6;&#x5F80;&#x53F3;&#x4EE3;&#x8868;&#x7684;&#x662F;&#x6240;&#x4F7F;&#x7528;&#x7684;&#x6A21;&#x5757;&#xFF0C;&#x4E3B;&#x673A;&#x5730;&#x5740;&#xFF0C;&#x6570;&#x636E;&#x5E93;&#x540D;&#xFF0C;&#x7528;&#x6237;&#x540D;&#xFF0C;&#x5BC6;&#x7801;</span>
<span class="token comment">####</span>
</code></pre>
<p>&#x91CD;&#x542F;mysql&#x5373;&#x53EF;</p>
<h3 id="&#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;loganalyzer"><a name="&#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;loganalyzer" class="anchor-navigation-ex-anchor" href="#&#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;loganalyzer"><i class="fa fa-link" aria-hidden="true"></i></a>1.2.3. &#x56FE;&#x5F62;&#x5316;web&#x7BA1;&#x7406;(loganalyzer)</h3>
<blockquote>
<p>&#x5B98;&#x65B9;&#x7AD9;&#x70B9;&#xFF1A;<a href="https://loganalyzer.adiscon.com/" target="_blank">https://loganalyzer.adiscon.com/</a></p>
</blockquote>
<ol>
<li>&#x5B89;&#x88C5;LNMP</li>
</ol>
<pre class="language-"><code class="lang-bash">yum <span class="token function">install</span> -y httpd php php-mysql php-gd
</code></pre>
<ol>
<li>&#x5C06;loganalyzer&#x4E0A;&#x4F20;&#x6216;&#x8005;&#x4E0B;&#x8F7D;&#x5230;&#x670D;&#x52A1;&#x5668;&#x76EE;&#x5F55;&#x4E2D;</li>
</ol>
<pre class="language-"><code class="lang-bash"><span class="token function">mkdir</span> /var/www/html/loganalyzer
<span class="token function">wget</span> http://download.adiscon.com/loganalyzer/loganalyzer-4.1.8.tar.gz
<span class="token function">tar</span> xf loganalyzer-4.1.8.tar.gz
<span class="token function">cp</span> -r loganalyzer-4.1.8/src /var/www/html/loganalyzer
<span class="token builtin class-name">cd</span> /var/www/html/loganalyzer
<span class="token function">chmod</span> +x *.sh
./configure.sh            <span class="token comment"># &#x811A;&#x672C;&#x5F88;&#x7B80;&#x5355;&#xFF08;&#x4E0B;&#x9762;&#x7684;secure.sh&#x4E5F;&#x662F;&#x5982;&#x6B64;&#xFF09;&#xFF0C;&#x624B;&#x52A8;&#x6267;&#x884C;&#x4E5F;&#x53EF;&#x4EE5;</span>
</code></pre>
<ol>
<li>&#x4F7F;&#x7528;&#x6D4F;&#x89C8;&#x5668;&#x8FDB;&#x884C;&#x5B89;&#x88C5;&#x64CD;&#x4F5C;&#xFF1A;<a href="http://localhost/loganalyzer" target="_blank">http://localhost/loganalyzer</a></li>
<li>web&#x5B89;&#x88C5;&#x5B8C;&#x4E4B;&#x540E;&#x6267;&#x884C;<code>./secure.sh</code>&#x5373;&#x53EF; </li>
</ol>
<footer class="page-footer"><span class="copyright">Copyright &#xA9; AGou 2020 all right reserved&#xFF0C;powered by Gitbook</span><span class="footer-modification">&#x8BE5;&#x6587;&#x4EF6;&#x4FEE;&#x8BA2;&#x65F6;&#x95F4;&#xFF1A;
2020-03-02 20:42:24
</span></footer>
                                
                                </section>
                            
    </div>
    <div class="search-results">
        <div class="has-results">
            
            <h1 class="search-results-title"><span class='search-results-count'></span> results matching "<span class='search-query'></span>"</h1>
            <ul class="search-results-list"></ul>
            
        </div>
        <div class="no-results">
            
            <h1 class="search-results-title">No results matching "<span class='search-query'></span>"</h1>
            
        </div>
    </div>
</div>

                        </div>
                    </div>
                
            </div>

            
                
                <a href="Linux时间服务器.html" class="navigation navigation-prev " aria-label="Previous page: Linux时间服务器">
                    <i class="fa fa-angle-left"></i>
                </a>
                
                
                <a href="sudo详解.html" class="navigation navigation-next " aria-label="Next page: sudo详解">
                    <i class="fa fa-angle-right"></i>
                </a>
                
            
        
    </div>

    <script>
        var gitbook = gitbook || [];
        gitbook.push(function() {
            gitbook.page.hasChanged({"page":{"title":"Linux日志管理系统","level":"1.4.9","depth":2,"next":{"title":"sudo详解","level":"1.4.10","depth":2,"path":"Linux/sudo详解.md","ref":"Linux/sudo详解.md","articles":[]},"previous":{"title":"Linux时间服务器","level":"1.4.8","depth":2,"path":"Linux/Linux时间服务器.md","ref":"Linux/Linux时间服务器.md","articles":[]},"dir":"ltr"},"config":{"plugins":["github@^2.0.0","edit-link@^2.0.2","anchors@^0.7.1","include-codeblock@^3.0.2","tbfed-pagefooter@^0.0.1","expandable-chapters-small@^0.1.7","anchor-navigation-ex@0.1.8","prism","-highlight","insert-logo","-lunr","-search","search-pro","splitter","lightbox","github-buttons","-sharing","sharing-plus","donate","code","-klipse","livereload"],"root":".","styles":{"website":"styles/website.css","pdf":"styles/pdf.css","epub":"styles/epub.css","mobi":"styles/mobi.css","ebook":"styles/ebook.css","print":"styles/print.css"},"pluginsConfig":{"tbfed-pagefooter":{"copyright":"Copyright © AGou 2020","modify_label":"该文件修订时间：","modify_format":"YYYY-MM-DD HH:mm:ss"},"prism":{"css":["prismjs/themes/prism-tomorrow.css"]},"github":{"url":"https://github.com/AGou-ops"},"livereload":{},"splitter":{},"search-pro":{},"sharing-plus":{"qq":false,"all":["facebook","google","twitter","instapaper","linkedin","pocket","stumbleupon"],"douban":false,"facebook":true,"weibo":false,"instapaper":false,"whatsapp":false,"hatenaBookmark":false,"twitter":true,"messenger":false,"line":false,"vk":false,"pocket":true,"google":false,"viber":false,"stumbleupon":false,"qzone":false,"linkedin":false},"code":{"copyButtons":true},"donate":{"alipay":"https://agou-ops.github.io/images/alipay.png","alipayText":"支付宝打赏","button":"打赏","title":"","wechat":"https://agou-ops.github.io/images/wechatpay.png","wechatText":"微信打赏"},"fontsettings":{"theme":"white","family":"sans","size":2},"anchor-navigation-ex":{"isRewritePageTitle":true,"tocLevel1Icon":"fa fa-hand-o-right","tocLevel2Icon":"fa fa-hand-o-right","tocLevel3Icon":"fa fa-hand-o-right"},"lightbox":{"jquery":true,"sameUuid":false},"github-buttons":{"repo":"AGou-ops/myStudyNote","types":["star","watch","fork"],"size":"small"},"expandable-chapters-small":{},"include-codeblock":{"check":false,"edit":true,"fixlang":false,"lang":"","template":"ace","theme":"chrome","unindent":true},"sharing":{"qq":true,"all":["douban","facebook","google","hatenaBookmark","instapaper","linkedin","twitter","weibo","messenger","qq","qzone","viber","vk","weibo","pocket","stumbleupon","whatsapp"],"douban":false,"facebook":false,"weibo":true,"instapaper":false,"whatsapp":false,"hatenaBookmark":false,"twitter":false,"messenger":false,"line":false,"vk":false,"pocket":false,"google":false,"viber":false,"stumbleupon":false,"qzone":true,"linkedin":false},"edit-link":{"label":"Edit This Page","base":"https://github.com/AGou-ops/myStudyNote"},"theme-default":{"styles":{"website":"styles/website.css","pdf":"styles/pdf.css","epub":"styles/epub.css","mobi":"styles/mobi.css","ebook":"styles/ebook.css","print":"styles/print.css"},"showLevel":true},"anchors":{},"insert-logo":{"style":"background: none; max-height: 50px; min-height: 50px","url":"https://s2.ax1x.com/2019/12/10/QBD0xO.jpg"}},"theme":"default","author":"AGou","pdf":{"pageNumbers":true,"fontSize":12,"fontFamily":"Arial","paperSize":"a4","chapterMark":"pagebreak","pageBreaksBefore":"/","margin":{"right":62,"left":62,"top":56,"bottom":56}},"structure":{"langs":"LANGS.md","readme":"README.md","glossary":"GLOSSARY.md","summary":"SUMMARY.md"},"variables":{},"title":"AGou's StudyNote","language":"zh-hans","output.name":"site","links":{"sidebar":{"◆点击进入我的个人博客":"http://agou-ops.github.io"}},"gitbook":"3.2.3","description":"岂能尽如人意，但求无愧我心。"},"file":{"path":"Linux/Linux日志管理系统.md","mtime":"2020-03-02T12:42:24.288Z","type":"markdown"},"gitbook":{"version":"3.2.3","time":"2020-03-02T12:42:32.383Z"},"basePath":"..","book":{"language":""}});
        });
    </script>
</div>

        
    <script src="../gitbook/gitbook.js"></script>
    <script src="../gitbook/theme.js"></script>
    
        
        <script src="../gitbook/gitbook-plugin-github/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-edit-link/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-expandable-chapters-small/expandable-chapters-small.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-insert-logo/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-search-pro/jquery.mark.min.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-search-pro/search.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-splitter/splitter.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-lightbox/js/lightbox.min.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-github-buttons/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-sharing-plus/buttons.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-donate/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-code/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-livereload/plugin.js"></script>
        
    
        
        <script src="../gitbook/gitbook-plugin-fontsettings/fontsettings.js"></script>
        
    

    </body>
</html>

